SOC Analyst Write-Ups for LetsDefend Certification. Detailed incident analysis, investigation steps, logs review, and blue team methodology.
-
Updated
Aug 7, 2026
SOC Analyst Write-Ups for LetsDefend Certification. Detailed incident analysis, investigation steps, logs review, and blue team methodology.
Field guide for SOC Level 1 analysts — tools, labs, SIEM workflows, threat intel, career path, and hands-on practice resources.
Complete notes, lab writeups, and challenge walkthroughs for the LetsDefend Incident Responder Path. This covers DFIR, memory forensics, Windows Event Log analysis, Active Directory attack hunting, malware triage and more!
Complete notes, challenge walkthroughs, and 20+ alert investigations for the LetsDefend.io SOC Analyst path. This covers SIEM, phishing analysis, web attack detection, malware triage, threat intelligence and Splunk.
Notes personnelles du parcours SOC Analyst (LetsDefend).
Blue Team writeups covering SOC alerts, Incident Response, Threat Hunting and Malware Analysis — LetsDefend & HackTheBox. Built as part of my cybersecurity portfolio.
30-day SOC Analyst and Security Engineering challenge using TryHackMe, LetsDefend, pfSense, Wazuh and a Proxmox homelab.
SOC alert walkthrough: SQL injection payload detected on an internal web server; IP reputation analysis, URL decoding, HTTP response analysis, and playbook closure. LetsDefend SOC165.
Documenting how I solved some Security labs and CTF challenges
Home lab for SOC Analyst training. Includes detection rules, playbooks and alert analysis.
LetsDefend — Memory Analysis Challenge Write-Up
Cybersecurity portfolio with hands-on blue team, web security, and beginner pentesting projects.
SOC analyst investigation and incident-response writeups in a consistent, reproducible format: hands-on Security Onion cases plus LetsDefend practice, with an issue-to-case automation workflow.
Notes, writeups and labs from TryHackMe SOC Level 1, LetsDefend, and CyberDefenders
LetsDefend-ToolShell-Incident-Reports
🛡️ A complete 100% free roadmap to become a SOC Analyst or Blue Team professional, featuring Linux, Networking, SIEM, Threat Hunting, Incident Response, hands-on labs, home lab projects, and curated learning resources.
Hands-on cybersecurity labs, SOC Analyst notes, Blue Team walkthroughs, TryHackMe & HTB writeups, LetsDefend investigations, Windows security, SIEM, and incident response.
An investigator is tasked with analyzing network traffic, reviewing event logs, and identifying how the attacker is navigating through the environment. The goal is to trace the attacker's steps, determine their access point, and prevent further escalation to the Domain Controller.
The goal is to identify the Techniques and Tactics used by the attacker so the incident response team can respond and mitigate further compromise across the network.
To associate your repository with the letsdefend topic, visit your repo's landing page and select "manage topics."